CVE-2024-56018
CVSS 3.1 Score 7.1 of 10 (high)
Details
Published Jan 2, 2025
CWE ID 79
Summary
CVE-2024-56018 is a Cross-Site Scripting (XSS) vulnerability affecting Boston University's (IS&T) BU Section Editing tool. The issue arises from improper neutralization of user input during web page generation. An attacker can exploit this vulnerability to inject malicious scripts into web pages viewed by other users, potentially resulting in data theft or unauthorized actions. This vulnerability exists in all versions of BU Section Editing from n/a through 0.9.9.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.